Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Pass the WGU Courses and Certificates Cybersecurity-Architecture-and-Engineering Questions and answers with ValidTests

Exam Cybersecurity-Architecture-and-Engineering All Questions
Exam Cybersecurity-Architecture-and-Engineering Premium Access

View all detail and faqs for the Cybersecurity-Architecture-and-Engineering exam

Viewing page 4 out of 7 pages
Viewing questions 31-40 out of questions
Questions # 31:

An organization is experiencing multiple instances of attempted access from geographicallocations where there are no corporate offices or staff.

What should a network administrator do to prevent further access attempts?

Options:

A.

Adjust the rule sets within the Security Information and Event Manager (SIEM) tool

B.

Adjust the Domain Name Service (DNS) server A Records

C.

Adjust the main proxy server to only allow specific addresses

D.

Adjust the firewall configuration to drop traffic from these addresses

Expert Solution
Questions # 32:

Which encryption technique can be used to enable a third-party provider to perform calculations on encrypted data without decrypting the data?

Options:

A.

Homomorphic encryption

B.

Secure function evaluation (SFE)

C.

Secure Sockets Layer (SSL)

D.

Private information retrieval (PIR)

Expert Solution
Questions # 33:

An IT organization needs to enable secure communication across virtual networks in Microsoft Azure and Amazon Web Services. Which protocol will offer the most reliable and secure method for data transport?

Options:

A.

File Transfer Protocol (FTP)

B.

Secure Shell (SSH)

C.

Internet Protocol Security (IPsec)

Expert Solution
Questions # 34:

A company has discovered a vulnerability in its domain name system (DNS) that could allow attackers to redirect users to malicious websites. The company has decided to implement a risk management strategy to mitigate this vulnerability.

What is the most effective risk management strategy for this vulnerability?

Options:

A.

Restricting DNS access to trusted internet protocol (IP) addresses only

B.

Implementing domain name system security extensions (DNSSEC) to digitally sign DNS responses and prevent DNS spoofing attacks

C.

Increasing the frequency of DNS server patching

D.

Conducting regular security awareness training for employees on the risks of phishing attacks

Expert Solution
Questions # 35:

Which life cycle is part of the process for planning, creating, testing, and deploying information systems?

Options:

A.

Network Development Life Cycle (NDLC)

B.

System Development Life Cycle (SDLC)

C.

Database Creation System Life Cycle (DCSLC)

D.

Software Test Life Cycle (STLC)

Expert Solution
Questions # 36:

A company has discovered a vulnerability in its lightweight directory access protocol (LDAP) implementation, which could potentially allow unauthorized access to sensitive information. The company has decided to implement risk mitigation strategies to reduce the risk associated with this vulnerability.

Which risk mitigation strategy will meet the needs of the company?

Options:

A.

Conducting regular security awareness training for employees to prevent social engineering attacks targeting LDAP credentials

B.

Regularly backing up data stored in the LDAP server to prevent data loss in the event of a breach

C.

Implementing intrusion detection and prevention systems (IDPS) to monitor for suspicious activities and potential LDAP attacks

D.

Implementing strong authentication mechanisms and encryption protocols to secure communication between the LDAP server and clients

Expert Solution
Questions # 37:

Which item is an input device?

Options:

A.

Printer

B.

Flash Drive

C.

CD

D.

Scanner

Expert Solution
Questions # 38:

The cybersecurity analyst at a hardware company conducted a vulnerability assessment to identify potential security risks to the organization and discovered multiple vulnerabilities on the company's webpage. The analyst then provided the results to the chief information security officer (CISO), who then decided to decommission the website and create a new page with increased security controls.

Which risk mitigation strategy is demonstrated in this scenario?

Options:

A.

Accept

B.

Avoid

C.

Transfer

D.

Mitigate

Expert Solution
Questions # 39:

A company has recently implemented a hybrid cloud deployment. The security team has been notified about thousands of failed attempts to connect to routers and switches in the on-premises network. A solution must be implemented to block connections after three unsuccessful SSH attempts on any network device.

Options:

A.

Firewall

B.

Data Loss Prevention

C.

Intrusion Prevention System (IPS)

Expert Solution
Questions # 40:

A company has recently completed its disaster recovery plan and is preparing to test it. The company’s IT team has identified the need to simulate a disaster scenario to evaluate the effectiveness of the plan. The team has considered a few options, including a full interruption test, a walk-through, tabletop exercises, and checklists. They want to choose a testing method that will allow them to evaluate the plan in a controlled environment while minimizing the impact on the company’s operations.

Which testing method will meet the needs of the company?

Options:

A.

Walk-through

B.

Tabletop exercises

C.

Checklists

D.

Full interruption test

Expert Solution
Viewing page 4 out of 7 pages
Viewing questions 31-40 out of questions